RFC#4568 is ambiguous regarding the size of the SRTCP authentication tag
for the AES_CM_128_HMAC_SHA1_32 cipher suite. The table in section 6.2
indicates that it should be 80, but section 6.2.2 states: “This
crypto-suite is identical to AES_CM_128_HMAC_SHA1_80 except that the
authentication tag is 32 bits.” I did not see anything in RFC#3711 that
would indicate that weak authentication tags are not valid for SRTCP --
hence the ambiguity.
Is there consensus on whether the SRTCP authentication tag must always
be 80 or whether the table in section 6.2 is in error?
Thanks,
Felix I. Wyss
Interactive Intelligence, Inc.
------------------------------------------------------------------------
_______________________________________________
Audio/Video Transport Working Group
avt at ietf.org
https://www1.ietf.org/mailman/listinfo/avt